How to remove rserver3.exe

rserver3.exe

The module rserver3.exe has been detected as Risk.RemoteAdmin

rserver3.exe
Product Name:

Radmin Server

Company Name:

Famatech Corp.

MD5: 7f4e16384fa3bdc035015148e768a87a
Size: 1 MB
First Published: 2017-05-25 05:04:31 (7 years ago)
Latest Published: 2021-10-15 20:51:16 (3 years ago)
Status: Risk.RemoteAdmin (on last analysis)
Analysis Date: 2021-10-15 20:51:16 (3 years ago)
Signed By: Famatech International Corp.
Status: Valid
%system%\rserver30
%sysdrive%\tcpu62\programm\radmin\system32\rserver30
%programfiles%\tcpu67\programm\radmin\system32\rserver30
%sysdrive%\tcpu68\programm\radmin\system32\rserver30
%programfiles%\tcpu66\programm\radmin\system32\rserver30
%sysdrive%\tcpu65\programm\radmin\system32\rserver30
%programfiles%\tcpu62\programm\radmin\system32\rserver30
%system%
%sysdrive%\tcpu68\programm\radmin\system32
%programfiles%\totalcommander\totalcmd\programm\radmin\system32
RServer3.exe
rserver3.exe
rserver3.bak
A0503041.exe
30.3%
12.3%
12.1%
6.5%
4.6%
4.4%
3.1%
3.1%
1.7%
1.5%
1.5%
1.5%
1.2%
1.2%
1.0%
1.0%
1.0%
1.0%
1.0%
0.7%
0.7%
0.7%
0.7%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.5%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
0.2%
Windows 7 56.1%
Windows 10 21.4%
Windows Server 2008 R2 6.4%
Windows 8.1 6.2%
Windows XP 5.5%
Windows Server 2012 R2 2.4%
Windows Server 2012 1.2%
Windows Server 2003 0.5%
Windows 8 0.5%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x01400000
Entry Address: 0x0000818b

PE Sections:

Name Size of data MD5
.text 45056 e55a8baf8caa3ad0ad816c3350ba9e5b
.rdata 20480 b6960f2b291fcec1f0139009f63b175d
.data 12288 4053c7ec1a35a05837e62243f2ddca40
.Sec0 0 00000000000000000000000000000000
.Sec1 0 00000000000000000000000000000000
.Sec2 0 00000000000000000000000000000000
.Sec3 0 00000000000000000000000000000000
.Sec4 0 00000000000000000000000000000000
.Sec5 0 00000000000000000000000000000000
.rsrc 1155072 e7b9282caa85f0f0f3d57dfbc7e911d5

More information:

Download GridinSoft Anti-Malware - Removal tool for rserver3.exe